Sully.ai Logo

Sully.ai

GRC Specialist

Posted Yesterday
Remote
Hiring Remotely in US
Senior level
Remote
Hiring Remotely in US
Senior level
Lead identification and remediation of security and compliance risks, build and run a Third Party Risk Management program, ensure device and contractor environment compliance, automate processes, and support enterprise negotiations to prevent security from blocking customer acquisition.
The summary above was generated by AI

About Us
At Sully.ai, We’re Building the Most Impactful Healthcare Company on Earth

We believe that access to a great doctor is a basic human right. Today, that’s not a reality. Delays, misdiagnoses, administrative chaos, and burnout plague the system.

Our Mission: One Human, One Doctor. We build AI teammates that augment clinicians — scribes, nurses, receptionists, translators — all powered by our own world-class models and deployed in real-world care.

Our Traction

  • 450+ organizations signed 16 months

  • AI agents cut admin by ~2.8 hours daily and reduce onboarding 85%.

  • 5M+ Clinical Tasks completed to date, serving 36+ specialties.

  • Raised $25M from YC, Eric Yuan, Amity, Semper Virens

  • Patented AI architecture (MedCon-1) outperforms GPT-4.5, Gemini, Claude on clinical reasoning tasks

Sully requires A-players capable of 4 months = 1 year output.

About the Role
  • At Sully.ai, we're looking for a highly motivated and result-driven Security and Compliance Engineer who can take self-action and drive outcomes without needing direction. This individual will be responsible for identifying and resolving security and compliance risks that could potentially block customer acquisition and ensure that these risks do not block other teams from serving clients. They will be a key player in building and executing a Third Party Risk Management program, ensuring all user devices are fully compliant with security requirements, and creating a clear plan forward for contractor virtual environments.

Key Responsibilities
  • Identify security and compliance risks that could potentially block customer acquisition, and resolve these risks without needing direction.

  • Build and execute a Third Party Risk Management program, ensuring all user devices are fully compliant with security requirements.

  • Create a clear plan forward for contractor virtual environments, ensuring compliance with security protocols.

  • Take initiative in finding and accurately capturing risk items, backing up findings with research and evidence.

  • Continuously look forward and build efficiencies and automations in daily tasks, driving predictable and repeatable revenue growth.

  • Collaborate with cross-functional teams to drive complex enterprise negotiations, ensuring compliance with security and compliance frameworks.

  • Develop and implement repeatable playbooks for outbound → demo → closed-won conversion, building high-performing sales teams and onboarding programs.

  • Drive and systematize revenue growth, increasing demo conversion and leading complex enterprise negotiations with high stakes and long sales cycles.

Hard Requirements
  • Mastery of security and compliance frameworks, with expertise in identifying and mitigating security risks.

  • Strong analytical and problem-solving skills, with the ability to find and resolve problems without needing direction.

  • Experience in building and executing Third Party Risk Management programs, ensuring compliance with security requirements.

  • Strong ability to operate independently in ambiguity, execute decisively, and be self-driven and highly motivated.

  • Experience in working with cloud-based security platforms, with a focus on building and executing security and compliance programs.

  • Strong technical skills, with expertise in security protocols, risk management, and compliance frameworks.

Key Results (First 90 Days)
  • Identify Security and Compliance items that could potentially block customer acquisition.

  • Resolve Security and Compliance risks to company objectives.

  • Build out a full Third Party Risk Management program leveraging in-place solutions. Add all current vendors to this platform.

  • Get all user devices fully compliant with security requirements.

  • Create a clear plan forward for contractor virtual environments.

  • Ensure Security and Compliance does not block other teams from being able to serve clients.

Who Thrives Here

  • Entrepreneurial to your core: You think in outcomes, thrive in chaos, and take ownership without limits

  • Mission-obsessed: You’re here to save lives, not just ship features — patients and doctors are your why.

  • Impact-driven & fast-moving: You sprint toward hard problems and ship with sharp judgment.

  • Elite teammate: You raise the bar through high standards, direct feedback, and craft excellence.

Why Join Sully.ai?
🔥 Revolutionizing the antiquated $800B+ Healthcare market

🧠 50%+ of us are ex-founders. We hire A-players, not passengers

⚡️ Speed matters - we operate with urgency, autonomy, and ownership

🧪 You’ll work on real, first-of-their-kind problems at the edge of AI and medicine

❤️ Your work helps doctors reclaim their time - and patients get better, faster care

Sully.ai is an equal opportunity employer. In addition to EEO being the law, it is a policy that is fully consistent with our principles. All qualified applicants will receive consideration for employment without regard to status as a protected veteran or a qualified individual with a disability, or other protected status such as race, religion, color, national origin, sex, sexual orientation, gender identity, genetic information, pregnancy or age. Sully.ai prohibits any form of workplace harassment. 

HQ

Sully.ai Mountain View, California, USA Office

883 N Shoreline Blvd, Mountain View, California, United States, 94043

Similar Jobs

19 Days Ago
Remote or Hybrid
San Francisco, CA, USA
Mid level
Mid level
Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
As a GRC Specialist, you will manage security controls, ensure compliance, and collaborate with teams to mitigate risks and develop policies.
Top Skills: AutomationCloud EnvironmentsInformation SecurityIso 27001Pci-DssSoc2
15 Days Ago
Remote
USA
Senior level
Senior level
Security • Software
As a Senior GRC Specialist, you will guide customers through compliance frameworks, enable cross-functional teams, and ensure audit readiness.
Top Skills: Fda CfrFedrampGdprHipaaHitrustIso 27001Soc 2Us Privacy
3 Hours Ago
Easy Apply
Remote
US
Easy Apply
100K-130K Annually
Mid level
100K-130K Annually
Mid level
Information Technology • Cybersecurity
The Product Marketing Manager at Huntress will focus on positioning, messaging, content creation, sales enablement, and go-to-market strategy for Managed ESPM, requiring collaboration with Product, Marketing, and Sales teams.

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account